Malicious
Malicious

45bb36c5efe2113d0ab3c72440c5c0b1

PE Executable
MD5: 45bb36c5efe2113d0ab3c72440c5c0b1
Size: 5.16 MB
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
MD5 45bb36c5efe2113d0ab3c72440c5c0b1
Sha1 8a4635c218eb497e220ca3c4f6e98aa477143cc2
Sha256 202d6cbb3d1c1f639d388b7bcc6c3f24566eb27f2d5e7fc6520b454e5f868d2c
Sha384 d38052d3c44e3e1c4928595888e25ff82265175712a520d72a012926334b0653b89fef3219e88aaabb4384a49450b21b
Sha512 1a9436a63da0a8be22f82d385fb2a48a1dc69edf340eaccfd6353db57502b51e4389bb22e4e9b1b1da7b53374b74621dc6ebe1a1951a31646073f6c0c6253170
SSDeep 49152:s/VH67UzaIQ5p/kwzcD4tv4lsJ8naSgcJULPxIf8KA7RkA:sBKV2JMZIf5A
TLSH FB367B17AE9188F6C1A9E335C8B74245BA64BC0D873123D32E61BE782F723D16E35B54
PeID
HQR data fileMicrosoft Visual C++ v6.0 DLLPrivate EXE Protector V2.30-V2.3X -> SetiSoft TeamtElock 1.0 (private) -> tE!tElock 1.0 (private) -> tE!
[Authenticode]_528e2a7a.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
STICH beta Structural Threat Infection Chain Hash

A content-independent fingerprint of the infection method: successive formats, internal objects and MITRE techniques from the initial file to each final payload.

STICH Path = the fingerprint (canonical chain with techniques) STICH Shape = structure only Only determinant branches produce STICH Paths.
Path pe:exe~T1027~T1055>bin
Shape pe:exe>bin
malicious 2 nodes
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
Authenticode present at 0x4EC000 size 2408 bytes
[Authenticode]_528e2a7a.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙